RULE(RULE ID:338272)

Rule General Information
Release Date: 2024-07-23
Rule Name: Weaver E-Cology9 Arbitrary File Read Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Weaver E-Cology is a set of office automation (OA) software, which is developed by Panmicroware Corporation of China. The purpose of this software is to provide an integrated solution for the internal office process of enterprises, so as to improve the office efficiency and information management. There is an arbitrary file reading vulnerability in Weaver e-cology9 XmlRpcServlet interface. A malicious attacker can read any file of the system through the interface, resulting in information leakage.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.